VendorsMcAfeeintrushield_network_security_manager5.1.7.7
Vulnerabilities

McAfee Intrushield Network Security Manager 5.1.7.7

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2009-3566
McAfee IntruShield Network Security Manager (NSM) before 5.1.11.8.1 does not include the HTTPOnly flag in the Set-Cookie header for the session identifier, which allows remote attackers to hijack a session by leveraging a cross-site scripting (XSS) vulnerability.
Published 2009-11-13 · Modified
4.31 PoCEPSS 0.040
CVE-2009-3565
Multiple cross-site scripting (XSS) vulnerabilities in intruvert/jsp/module/Login.jsp in McAfee IntruShield Network Security Manager (NSM) before 5.1.11.6 allow remote attackers to inject arbitrary web script or HTML via the (1) iaction or (2) node parameter.
Published 2009-11-13 · Modified
4.32 PoCEPSS 0.022